URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: cqhanchu.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2018-06-05 19:55:04 UTC
Total malware sites :5
Online malware sites :0 (0%)
Offline Malware sites :5 (100%)
A record(s) observed :8

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2018-06-05 19:55:09 43.224.153.221Not listedAS139021 WEST263GO-HK- SGno
2020-01-15 12:33:04 219.234.31.22Not listedAS139021 WEST263GO-HK- CNno
2020-01-11 10:36:13 219.234.30.40Not listedAS139021 WEST263GO-HK- CNno
2019-10-14 15:16:11 219.234.23.86Not listedAS139021 WEST263GO-HK- CNno
2019-10-12 05:18:29 219.234.28.79Not listedAS139021 WEST263GO-HK- CNno
2019-07-23 14:42:10 219.234.28.122Not listedAS139021 WEST263GO-HK- CNno
2019-05-24 12:26:32 219.234.31.103Not listedAS139021 WEST263GO-HK- CNno
2018-11-07 11:08:49 219.234.23.121Not listedAS139021 WEST263GO-HK- CNno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2018-07-31 22:28:09http://cqhanchu.com/files/EN_en/New-AddressOfflinedoc emotet ext heodo ext Anonymous
2018-07-31 19:14:33http://cqhanchu.com/files/EN_en/New-Address/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-07-16 06:57:57http://cqhanchu.com/default/Rech/Fakturierung/R...Offlinedoc emotet ext heodo ext Anonymous
2018-07-14 02:57:46http://cqhanchu.com/doc/En/Jul2018/Invoice-9635...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2018-06-05 19:55:09http://cqhanchu.com/ups.com/WebTracking/DCY-916...Offlinedoc emotet ext heodo ext Cryptolaemus1